{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T12:30:29Z","timestamp":1743078629521,"version":"3.40.3"},"publisher-location":"Cham","reference-count":35,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031781216"},{"type":"electronic","value":"9783031781223"}],"license":[{"start":{"date-parts":[[2024,12,5]],"date-time":"2024-12-05T00:00:00Z","timestamp":1733356800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,12,5]],"date-time":"2024-12-05T00:00:00Z","timestamp":1733356800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-78122-3_23","type":"book-chapter","created":{"date-parts":[[2024,12,4]],"date-time":"2024-12-04T07:16:24Z","timestamp":1733296584000},"page":"356-371","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["TRIGS: Trojan Identification from\u00a0Gradient-Based Signatures"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-4707-9313","authenticated-orcid":false,"given":"Mohamed","family":"Hussein","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-0501-2809","authenticated-orcid":false,"given":"Sudharshan Subramaniam","family":"Janakiraman","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8320-8530","authenticated-orcid":false,"given":"Wael","family":"AbdAlmageed","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,12,5]]},"reference":[{"key":"23_CR1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"213","DOI":"10.1007\/978-3-030-58452-8_13","volume-title":"Computer Vision \u2013 ECCV 2020","author":"N Carion","year":"2020","unstructured":"Carion, N., Massa, F., Synnaeve, G., Usunier, N., Kirillov, A., Zagoruyko, S.: End-to-end object detection with transformers. In: Vedaldi, A., Bischof, H., Brox, T., Frahm, J.-M. (eds.) ECCV 2020. LNCS, vol. 12346, pp. 213\u2013229. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-58452-8_13"},{"key":"23_CR2","unstructured":"Chen, B., et al.: Detecting backdoor attacks on deep neural networks by activation clustering. In: AAAI\u2019s Workshop on Artificial Intelligence Safety (2019)"},{"key":"23_CR3","doi-asserted-by":"publisher","unstructured":"Chen, H., Fu, C., Zhao, J., Koushanfar, F.: DeepInspect: a black-box trojan detection and mitigation framework for deep neural networks. In: Proceedings of the Twenty-Eighth International Joint Conference on Artificial Intelligence (2019). https:\/\/doi.org\/10.24963\/ijcai.2019\/647","DOI":"10.24963\/ijcai.2019\/647"},{"key":"23_CR4","doi-asserted-by":"publisher","unstructured":"Dong, Y., et al.: Black-box detection of backdoor attacks with limited information and data. In: 2021 IEEE\/CVF International Conference on Computer Vision (ICCV) (2021). https:\/\/doi.org\/10.1109\/ICCV48922.2021.01617","DOI":"10.1109\/ICCV48922.2021.01617"},{"key":"23_CR5","unstructured":"Dosovitskiy, A., et al.: An image is worth 16x16 words: transformers for image recognition at scale. In: International Conference on Learning Representations (2020)"},{"key":"23_CR6","unstructured":"Erhan, D., Bengio, Y., Courville, A., Vincent, P.: Visualizing Higher-Layer Features of a Deep Network. Technical Report, Univerist\u00e9 de Montr\u00e9al (2009)"},{"key":"23_CR7","doi-asserted-by":"publisher","unstructured":"Fredrikson, M., Jha, S., Ristenpart, T.: Model inversion attacks that exploit confidence information and basic countermeasures. In: Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security (2015). https:\/\/doi.org\/10.1145\/2810103.2813677","DOI":"10.1145\/2810103.2813677"},{"key":"23_CR8","unstructured":"Geiping, J., et al.: Witches\u2019 Brew: industrial scale data poisoning via gradient matching. In: International Conference on Learning Representations (2022)"},{"key":"23_CR9","unstructured":"Gu, T., Dolan-Gavitt, B., Garg, S.: BadNets: Identifying Vulnerabilities in the Machine Learning Model Supply Chain (2019)"},{"key":"23_CR10","doi-asserted-by":"publisher","unstructured":"He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: 2016 IEEE Conference on Computer Vision and Pattern Recognition (CVPR), pp. 770\u2013778 (2016). https:\/\/doi.org\/10.1109\/CVPR.2016.90","DOI":"10.1109\/CVPR.2016.90"},{"key":"23_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"326","DOI":"10.1007\/978-3-030-58583-9_20","volume-title":"Computer Vision \u2013 ECCV 2020","author":"S Huang","year":"2020","unstructured":"Huang, S., Peng, W., Jia, Z., Tu, Z.: One-pixel signature: characterizing CNN models for backdoor detection. In: Vedaldi, A., Bischof, H., Brox, T., Frahm, J.-M. (eds.) ECCV 2020. LNCS, vol. 12372, pp. 326\u2013341. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-58583-9_20"},{"key":"23_CR12","doi-asserted-by":"publisher","unstructured":"Karra, K., Ashcraft, C., Fendley, N.: The TrojAI Software Framework: An OpenSource tool for Embedding Trojans into Deep Learning Models (2020). https:\/\/doi.org\/10.48550\/arXiv.2003.07233","DOI":"10.48550\/arXiv.2003.07233"},{"key":"23_CR13","doi-asserted-by":"crossref","unstructured":"Kolouri, S., Saha, A., Pirsiavash, H., Hoffmann, H.: Universal litmus patterns: revealing backdoor attacks in CNNs. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (2020)","DOI":"10.1109\/CVPR42600.2020.00038"},{"key":"23_CR14","unstructured":"Li, Y., Lyu, X., Koren, N., Lyu, L., Li, B., Ma, X.: Neural attention distillation: erasing backdoor triggers from deep neural networks. In: International Conference on Learning Representations (2021)"},{"key":"23_CR15","doi-asserted-by":"publisher","unstructured":"Liu, Y., Lee, W.C., Tao, G., Ma, S., Aafer, Y., Zhang, X.: ABS: scanning neural networks for back-doors by artificial brain stimulation. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security (2019). https:\/\/doi.org\/10.1145\/3319535.3363216","DOI":"10.1145\/3319535.3363216"},{"key":"23_CR16","doi-asserted-by":"publisher","unstructured":"Liu, Y., et al.: Trojaning attack on neural networks. In: Proceedings 2018 Network and Distributed System Security Symposium (2018). https:\/\/doi.org\/10.14722\/ndss.2018.23291","DOI":"10.14722\/ndss.2018.23291"},{"key":"23_CR17","doi-asserted-by":"crossref","unstructured":"Liu, Y., Shen, G., Tao, G., Wang, Z., Ma, S., Zhang, X.: Complex backdoor detection by symmetric feature differencing. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (2022)","DOI":"10.1109\/CVPR52688.2022.01458"},{"key":"23_CR18","doi-asserted-by":"publisher","unstructured":"Mahendran, A., Vedaldi, A.: visualizing deep convolutional neural networks using natural pre-images. Inter. J. Comput. Vis. 120(3) (2016). https:\/\/doi.org\/10.1007\/s11263-016-0911-8","DOI":"10.1007\/s11263-016-0911-8"},{"key":"23_CR19","doi-asserted-by":"publisher","unstructured":"Nguyen, A., Yosinski, J., Clune, J.: Multifaceted Feature Visualization: Uncovering the Different Types of Features Learned By Each Neuron in Deep Neural Networks (2016). https:\/\/doi.org\/10.48550\/arXiv.1602.03616","DOI":"10.48550\/arXiv.1602.03616"},{"key":"23_CR20","series-title":"Lecture Notes in Computer Science (Lecture Notes in Artificial Intelligence)","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1007\/978-3-030-28954-6_4","volume-title":"Explainable AI: Interpreting, Explaining and Visualizing Deep Learning","author":"A Nguyen","year":"2019","unstructured":"Nguyen, A., Yosinski, J., Clune, J.: Understanding neural networks via feature visualization: a survey. In: Samek, W., Montavon, G., Vedaldi, A., Hansen, L.K., M\u00fcller, K.-R. (eds.) Explainable AI: Interpreting, Explaining and Visualizing Deep Learning. LNCS (LNAI), vol. 11700, pp. 55\u201376. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-28954-6_4"},{"key":"23_CR21","doi-asserted-by":"publisher","unstructured":"Saha, A., Subramanya, A., Pirsiavash, H.: Hidden trigger backdoor attacks. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol.\u00a034 (2020). https:\/\/doi.org\/10.1609\/aaai.v34i07.6871","DOI":"10.1609\/aaai.v34i07.6871"},{"key":"23_CR22","unstructured":"Shafahi, A., et al.: Poison frogs! targeted clean-label poisoning attacks on neural networks. In: Advances in Neural Information Processing Systems, vol.\u00a031 (2018)"},{"key":"23_CR23","unstructured":"Shen, G., et al.: Backdoor scanning for deep neural networks through K-Arm optimization. In: Proceedings of the 38th International Conference on Machine Learning (2021)"},{"key":"23_CR24","doi-asserted-by":"publisher","unstructured":"Simonyan, K., Vedaldi, A., Zisserman, A.: Deep Inside Convolutional Networks: Visualising Image Classification Models and Saliency Maps (2014). https:\/\/doi.org\/10.48550\/arXiv.1312.6034","DOI":"10.48550\/arXiv.1312.6034"},{"key":"23_CR25","unstructured":"Simonyan, K., Zisserman, A.: Very deep convolutional networks for large-scale image recognition. In: International Conference on Learning Representations (2015)"},{"key":"23_CR26","unstructured":"Souri, H., Fowl, L., Chellappa, R., Goldblum, M., Goldstein, T.: Sleeper agent: scalable hidden trigger backdoors for neural networks trained from scratch. In: Advances in Neural Information Processing Systems (NeurIPS) (2022)"},{"key":"23_CR27","doi-asserted-by":"publisher","unstructured":"Wang, B., et al.: Neural cleanse: identifying and mitigating backdoor attacks in neural networks. In: 2019 IEEE Symposium on Security and Privacy (SP) (2019). https:\/\/doi.org\/10.1109\/SP.2019.00031","DOI":"10.1109\/SP.2019.00031"},{"key":"23_CR28","doi-asserted-by":"publisher","unstructured":"Wang, H., Xiang, Z., Miller, D.J., Kesidis, G.: MM-BD: post-training detection of backdoor attacks with arbitrary backdoor pattern types using a maximum margin statistic. In: 2024 IEEE Symposium on Security and Privacy (SP) (2023). https:\/\/doi.org\/10.1109\/SP54263.2024.00015","DOI":"10.1109\/SP54263.2024.00015"},{"key":"23_CR29","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"222","DOI":"10.1007\/978-3-030-58592-1_14","volume-title":"Computer Vision \u2013 ECCV 2020","author":"R Wang","year":"2020","unstructured":"Wang, R., Zhang, G., Liu, S., Chen, P.-Y., Xiong, J., Wang, M.: Practical detection of trojan neural networks: data-limited and data-free cases. In: Vedaldi, A., Bischof, H., Brox, T., Frahm, J.-M. (eds.) ECCV 2020. LNCS, vol. 12368, pp. 222\u2013238. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-58592-1_14"},{"key":"23_CR30","doi-asserted-by":"publisher","unstructured":"Weber, M., Xu, X., Karlas, B., Zhang, C., Li, B.: RAB: provable robustness against backdoor attacks. In: 2023 IEEE Symposium on Security and Privacy (SP) (2023). https:\/\/doi.org\/10.1109\/SP46215.2023.00037","DOI":"10.1109\/SP46215.2023.00037"},{"key":"23_CR31","doi-asserted-by":"publisher","unstructured":"Xiang, Z., Miller, D.J., Kesidis, G.: Revealing backdoors, post-training, in dnn classifiers via novel inference on optimized perturbations inducing group misclassification. In: ICASSP 2020 - 2020 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP) (2020). https:\/\/doi.org\/10.1109\/ICASSP40776.2020.9054581","DOI":"10.1109\/ICASSP40776.2020.9054581"},{"key":"23_CR32","unstructured":"Xie, E., Wang, W., Yu, Z., Anandkumar, A., Alvarez, J.M., Luo, P.: SegFormer: simple and efficient design for semantic segmentation with transformers. In: Advances in Neural Information Processing Systems, vol.\u00a034 (2021)"},{"key":"23_CR33","doi-asserted-by":"publisher","unstructured":"Xu, X., Wang, Q., Li, H., Borisov, N., Gunter, C.A., Li, B.: Detecting AI trojans using meta neural analysis. In: 2021 IEEE Symposium on Security and Privacy (SP) (2021). https:\/\/doi.org\/10.1109\/SP40001.2021.00034","DOI":"10.1109\/SP40001.2021.00034"},{"key":"23_CR34","unstructured":"Yosinski, J., Clune, J., Nguyen, A., Fuchs, T., Lipson, H.: Understanding Neural Networks Through Deep Visualization (2015)"},{"key":"23_CR35","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"818","DOI":"10.1007\/978-3-319-10590-1_53","volume-title":"Computer Vision \u2013 ECCV 2014","author":"MD Zeiler","year":"2014","unstructured":"Zeiler, M.D., Fergus, R.: Visualizing and understanding convolutional networks. In: Fleet, D., Pajdla, T., Schiele, B., Tuytelaars, T. (eds.) ECCV 2014. LNCS, vol. 8689, pp. 818\u2013833. Springer, Cham (2014). https:\/\/doi.org\/10.1007\/978-3-319-10590-1_53"}],"container-title":["Lecture Notes in Computer Science","Pattern Recognition"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-78122-3_23","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,12,4]],"date-time":"2024-12-04T08:12:56Z","timestamp":1733299976000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-78122-3_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,5]]},"ISBN":["9783031781216","9783031781223"],"references-count":35,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-78122-3_23","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2024,12,5]]},"assertion":[{"value":"5 December 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICPR","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Pattern Recognition","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Kolkata","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"1 December 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"5 December 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icpr2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/icpr2024.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}